A scan fans out to specialised agents
39 agents are scheduled along a Penetration Task Graph — web, API, GraphQL, auth, infra, AD, CI/CD, mobile, wireless, cloud posture. A five-phase WebSocket monitor shows the run as it happens.
The AI-orchestrated penetration-testing platform that doesn't just find vulnerabilities — it proves them. Hypothesis-driven agents, zero-false-positive by design, every finding backed by cryptographic evidence and mapped to PCI DSS, ISO 27001 and SOC 2.
39 specialised agents · 5 approval tiers · 15 compliance frameworks
oracle: positive-control + differential → REPORT lane · T1190
The problem
Scanners hand security teams thousands of unproven findings. Triage becomes the job: someone has to reproduce each one by hand before anyone will fix it, and most of them were never real.
Then the second tax lands. Regulated teams re-translate those same results, by hand, into control evidence for every framework an auditor asks about — a spreadsheet exercise repeated each quarter, for every engagement.
Subira treats both as engineering problems: an oracle that refuses to report what it can't prove, and reports that come out already mapped.
How it works
39 agents are scheduled along a Penetration Task Graph — web, API, GraphQL, auth, infra, AD, CI/CD, mobile, wireless, cloud posture. A five-phase WebSocket monitor shows the run as it happens.
Every candidate faces a positive-control plus differential oracle and lands as CONFIRMED, UNCONFIRMED or INCONCLUSIVE. Only OOB-proven or CONFIRMED findings enter the report lane.
Each finding carries CVSS 4.0, MITRE ATT&CK and its kill-chain. One click produces a per-framework DOCX — ISO 27001, PCI DSS, SOC 2 and the rest — plus a ZIP audit package with findings, evidence and a timestamp manifest.
Authorization, rules of engagement and anything irreversible stay human. Tier 3 and above require a signed cryptographic authorization token (EAT) plus human approval before an exploitation agent runs — and proof-of-concept payloads only, never destructive ones.
Platform
Web through Active Directory through cloud posture, in a single platform — with a two-phase scan model that makes it structurally impossible for an assessment to run an exploitation agent.
Crawl, fuzz and probe endpoints with per-parameter hypotheses.
Introspection abuse, batching, flow and redirect-URI weaknesses.
Token handling, fixation, privilege boundaries and access control.
SQL and command injection, reflected/stored XSS, HTTP request desync.
Unsafe object graphs and server-side request forgery, OOB-confirmed.
Service exposure, misconfiguration and known-vulnerable versions.
Certificate-template and delegation review by enumeration, no abuse.
Pipeline permissions, secret exposure and build-step injection.
MASVS-aligned checks on storage, transport and platform interaction.
Authentication and segmentation weaknesses on in-scope networks.
Edge and management-plane configuration on routers and firewalls.
Identity, storage and exposure posture once cloud credentials are supplied.
Attack intelligence driven by hypotheses: an explore budget, UCB scoring, chain-severity reasoning and adversarial survival checks decide what is worth attempting next.
Cross-scan memory with warm-start and expected-value priors, deduplication and novelty scoring, and a portfolio scheduler — so agents in a scan behave as one collective.
NVD, CISA KEV, FIRST EPSS and Exploit-DB, ingested live — 2,471 rows today, 1,631 of them KEV. Prioritisation stays scope- and EAT-gated.
The proof discipline
This is the standard shape of a Subira finding. Expand it to see what a report-lane result carries by the time it reaches you.
DNS A · 7f3c9e.oob.subira.io
src 203.0.113.44 · db-prod-02
Δt 412ms · correlation OK
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N
T1190 — Exploit Public-Facing Application
sha256 4f9a1c…8b02d7
RFC-3161 timestamp · 2026-05-14T09:22:41Z (when a TSA is configured)
Differential test showed no behavioural change; positive control failed to reproduce. Marked UNCONFIRMED and kept out of the report — a human never has to triage it.
Zero false positives is a tested invariant, not a promise: the evaluation harness enforces precision 1.00 on everything that clears the CONFIRMED bar.
100%
Recall on the live recall-floor benchmark — XSS and SQLi, both oracle-confirmed.
Footnote: only the reflective lab was reachable in this run, so the denominator is 2.
1,964+
Automated tests, coverage-gated in CI — with 0 WCAG (axe) violations across the product.
Live
Authorization-safe on a live bug-bounty target: the rules-of-engagement flow ran end to end and out-of-scope activity was refused.
Compliance
Subira is designed for and mappable to the frameworks auditors actually ask about. Compliance is framed as mapping and posture — the concrete, shipped proof is a per-framework DOCX generated straight from a scan.
Coverage indicates mapped control density, not certification.
A redacted DOCX generated by a live scan — findings, control mapping, kill-chain evidence and the timestamp manifest, exactly as it comes out of the product.
Who it's for
Testing evidence that arrives as regulator-shaped output. Surface: per-framework compliance DOCX.
Continuous, proven coverage without a triage backlog. Surface: CI/CD gates, RBAC, retest lifecycle.
Stay inside the rules while you hunt. Surface: HackerOne program browse with rules-of-engagement attestation.
Practice surfaces with the same proof discipline. Surface: Red Team and CTF workspaces, HTB bootstrap.
Deployment
Self-hosted or Subira-hosted, designed for in-region data residency. Model access, notification routing, cloud scanning and RFC-3161 timestamping activate when you configure the corresponding credential — and the platform runs deterministically without them, never fabricating a result.
Air-gapped and Helm packaging, MSSP white-label, and a public SDK/CLI are on the roadmap — coming soon, not shipped.
Custom roles, API keys and service accounts.
Finding lifecycle as a state machine, with delta detection.
No agent acts outside an authorised scope — leads never bypass the gate.
Configurable retention, SIEM export, SAML SP with SSO group mapping.
The name
Patience. Perseverance. Proving something takes longer than guessing at it — which is exactly the discipline we chose to build into the product. Subira is built for the institutions that have to answer to a regulator, wherever they operate.
Talk to us
Request a demo
A 30-minute walkthrough: a live scan, the oracle rejecting a lead, and the compliance-mapped DOCX coming out the other end.
We reply within one business day. Your details are used only to contact you — see the privacy policy.
If it's urgent, mail sales@subira.io and mention this request.